tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c.
References
Link | Resource |
---|---|
https://github.com/appneta/tcpreplay/issues/716 | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ECRCFJ6X3IVB7BT4KS6AHQMSL532YXYD/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5B75AFRJUGOYHCFG2ZV2JKSUPA6MSCT5/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JWRZO7BG6DHA5NAC3COB45WFXLYRIERC/ | Mailing List Third Party Advisory |
https://security.gentoo.org/glsa/202210-08 |
Information
Published : 2022-03-26 06:15
Updated : 2022-10-16 10:15
NVD link : CVE-2022-27941
Mitre link : CVE-2022-27941
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
fedoraproject
- fedora
broadcom
- tcpreplay